On January 5, there was a hack on the official X account of blockchain security startup CertiK. While they looked into the breach, the company told its followers not to interact with any of its content.
Images from social media sites showed that the attacker had sent a bogus message with a phishing link citing a problem with Uniswap routers. This post had no impact on Uniswap, a nearly $3.8B decentralized exchange on Ethereum.
The hacker sent a message urging followers to click the Revoke Cash phishing link. This might completely deplete people's wallets. Although CertiK deleted this post, it hasn't yet verified regaining account control.
The breach was triggered by an attack on an employee who was contacted by a verified, yet hacked, media-related account. A tweet featuring a phishing link was posted at 08:48 am UTC, and CertiK detected the breach seven minutes later. The phishing link, scheming to mimic a Uniswap Router failure, was promptly deleted at 09:02 am UTC.
A similar breach of the company's online presence occurred recently when phishing links were present on its official Discord channel. Money lost as a result of the breach is yet unknown.